The National Administration Apele Române announced a ransomware cyber attack, notifying the National Cyber Security Directorate (DNSC) on December 20, 2025. The attack affected workstations and servers of 10 out of the 11 water basin administrations in the country, compromising approximately 1,000 IT&C systems, including GIS servers, databases, and email servers. However, operational technologies were not affected, and regular activities continue within normal parameters. Technical teams from various institutions are involved in investigating the incident, and the Apele Române infrastructure is not protected by the national cyber security system. The attackers used a legitimate encryption mechanism, 'BitLocker', to lock files, and sent a ransom note, requesting contact within a 7-day period.
Sources